Skip to content
Snippets Groups Projects
Commit 0040b7b3 authored by Oliver Hader's avatar Oliver Hader Committed by Oliver Hader
Browse files

[SECURITY] Ensure decoded entities are encoded for HTML again

HTML entities being used in link tags created with `typolink` have
to be encoded correctly again after entities have been decoded for
internal processing.

Resolves: #91161
Releases: master, 9.5
Change-Id: Ifc4d2da669aab01f2b3041bb32c0a24a727634b4
Security-Bulletin: TYPO3-CORE-SA-2020-003
Security-References: CVE-2020-11065
Reviewed-on: https://review.typo3.org/c/Packages/TYPO3.CMS/+/64467


Tested-by: default avatarOliver Hader <oliver.hader@typo3.org>
Reviewed-by: default avatarOliver Hader <oliver.hader@typo3.org>
parent 14929b98
Branches
Tags
No related merge requests found
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment